Presentation is loading. Please wait.

Presentation is loading. Please wait.

1 AAA for document delivery ~ Work in progress ~ Shuichi TASHIRO Electrotechnical Laboratory, Japan.

Similar presentations


Presentation on theme: "1 AAA for document delivery ~ Work in progress ~ Shuichi TASHIRO Electrotechnical Laboratory, Japan."— Presentation transcript:

1 tashiro@etl.go.jp 1 AAA for document delivery ~ Work in progress ~ Shuichi TASHIRO Electrotechnical Laboratory, Japan

2 tashiro@etl.go.jp 2 Policy based usage control requestcheckservice (1)(2)(3) Document policy User capability

3 tashiro@etl.go.jp 3 Example of policy on document delivery AuthorAkira Kurosawa Type of contentMPEG video Digitally copy by userProhibited Print by userPermitted Number of viewUnlimited Duration1/1/2000 – 1/1/2001 User qualificationStudent certification of xxx university is required FeeFree

4 tashiro@etl.go.jp 4 Document to be distributed Digital signed to prevent tampering Encrypted to prevent unauthorized access Policy program Content ID Encrypted Content policy block

5 tashiro@etl.go.jp 5 off-line model Policy capability Policy enforcement engine document All policy enforcement process is done at user’s PC check

6 tashiro@etl.go.jp 6 Authorization model (Off-line model) Capability Checker (User Home Organization) User’s PC Policy Enforcement Engine(PEE) (AAA Server) Browser (Service Equipment) content Copyright Policy User capability database Broker (for author) Document Provider a b Broker (for user) b’b’ 2 1 2 3 45 6 7

7 tashiro@etl.go.jp 7 content Copyright Policy Authorization model (semi Off-line model) Capability Checker (User Home Organization) User’s PC Policy Enforcement Engine(PEE) (AAA Server) Browser (Service Equipment) content Copyright Policy User ⑦ capability database Broker (for author) b Broker (for user) b’b’ broker AAA Server Key conversion Document Provider 1 3 45 6 2 2

8 tashiro@etl.go.jp 8 On-line model capability Policy Service server AAA sequence document user Policy enforcement process is (partially) done at server on Internet Policy enforcement engine

9 tashiro@etl.go.jp 9 Authorization model (On-line model) User’s PC Policy Enforcement Engine(PEE) (AAA Server) Browser (Service Equipment) content Copyright Policy User a Content server Capability Checker (User Home Organization) capability database Broker (author) b Broker (user) b’b’ Document Provider 6 1 3 4 5 6 7 2

10 tashiro@etl.go.jp 10 Implementation Capability Checker Policy Enforcement Engine(PEE) Browser (Netscape / Real player) capability database User’s PC Plugin JAVA interpreter + Library Plug-in module for Netscape navigator and Real player PCMCIA Card Sub Card

11 tashiro@etl.go.jp 11 Future work Common Policy Description Language (currently using JAVA) Common architecture for Policy Enforcement Engine - common to various applications Security & Privacy - tamper resistance, - key management/update, - anonymity vs. security


Download ppt "1 AAA for document delivery ~ Work in progress ~ Shuichi TASHIRO Electrotechnical Laboratory, Japan."

Similar presentations


Ads by Google